[php-maint] Bug#609315: php5: Upstream bug CVE-2010-4645 / bug #53632, critical: conversion string>double might hang PHP interpreter

Julien Cristau jcristau at debian.org
Sat Jan 8 17:41:27 UTC 2011


Version: 5.3.3-7

On Sat, Jan  8, 2011 at 14:26:50 +0100, Jort Koopmans wrote:

> >From upstream; http://bugs.php.net/bug.php?id=53632
> followed by release 5.3.5 and 5.2.17: 
> http://www.php.net/archive/2011.php#id2011-01-06-1
> 
> Short description;
> 
> Conversions from string to double might cause the PHP interpreter to 
> hang on systems using x87 FPU registers.
> 
> The problem is known to only affect x86 32-bit PHP processes, regardless 
> of whether the system hosting PHP is 32-bit or 64-bit.
> 
Marking as fixed in squeeze/sid.

Cheers,
Julien
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-php-maint/attachments/20110108/6592d864/attachment.pgp>


More information about the pkg-php-maint mailing list